Known Vulnerabilities for Daily Expense Tracker System by Phpgurukul
Listed below are 4 of the newest known vulnerabilities associated with "Daily Expense Tracker System" by "Phpgurukul".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-26304 | PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS via the add-expense.php Item parameter. | 5.4 - MEDIUM | 2021-01-29 | 2021-02-01 |
| CVE-2021-26303 | PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS via the user-profile.php Full Name field. | 6.1 - MEDIUM | 2021-01-29 | 2021-01-29 |
| CVE-2020-10107 | PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS, as demonstrated by the ExpenseItem or ExpenseCost pa... | 5.4 - MEDIUM | 2020-03-05 | 2020-03-05 |
| CVE-2020-10106 | PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to SQL injection, as demonstrated by the email parameter in index.p... | 9.8 - CRITICAL | 2020-03-05 | 2020-03-06 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Phpgurukul | Daily Expense Tracker System | 1.0 |